MikroTik Winbox 3.20 and below is vulnerable to man in the middle attacks. A man in the middle can downgrade the clients authentication protocol and recover the users username and MD5 hashed password.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Routeros | Mikrotik | * | 6.43 (excluding) |
Winbox | Mikrotik | * | 3.20 (excluding) |